when the Signal protocol came out, unproved and unverified, but Moxie+Trevor-designed, nobody asked for proofs, we didn't even have specs :)
Except there's no part that's "bad" to be twiced. Noise has real merits and is a solid set of protocols that lives up to rigorous security analysis. We're now starting to get the first batch of proofs and analysis of Noise protocols. Things are looking quite positive, not "bad"
-
-
And, you can certainly count on there being new, additional, proofs of Noise (and by extension of WireGuard). But sure, if your beef was NDSS accepting papers that didn't provide a proof (even though a proof came a bit after), okay then.
-
That’s my beef, as laid out in the tweet that started this whole thing. Also I’m surprised that Trevor didn’t find a way to solve this problem early on.
- 15 more replies
New conversation -
-
-
To repeat. My problem here is with NDSS, for accepting this backwards order of operations. Not with you.
- 6 more replies
New conversation -
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.